PT-2023-11467 · Mozilla+1 · Firefox+1

Published

2020-07-06

·

Updated

2025-03-19

·

CVE-2020-12413

CVSS v3.1

5.9

Medium

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Firefox (affected versions not specified)
Description The issue is a timing attack on DHE ciphersuites inherent in the TLS specification.
Recommendations To mitigate this issue, disable support for DHE ciphersuites.

Fix

Side Channel Attack

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2020-2309
ALT-PU-2020-2408
ALT-PU-2020-2933
ALT-PU-2020-3442
ALT-PU-2021-1368
ALT-PU-2021-3368
CVE-2020-12413

Affected Products

Alt Linux
Firefox